CVE-2026-76926: Reachable Assertion in Wireshark
Published Aug 19, 2026
·Updated
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Affected Software
1 affected component
Wireshark>=4.6.0<=4.6.7, >=4.4.0<=4.4.18
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.6.8
Event History
Aug 19, 2026
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
Which Wireshark versions are affected?
The affected version ranges are 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18.
2
What must an attacker do to trigger the denial of service?
An attacker must cause Wireshark to process a crafted BUSMASTER file. The CVSS vector indicates user interaction is required and exploitation has high attack complexity.
3
What is the likely impact of successful exploitation?
Successful exploitation causes an abnormal parser exit, resulting in denial of service. The supplied CVSS metrics indicate no confidentiality or integrity impact and low availability impact.